First published: Wed Dec 27 2023(Updated: )
An issue in Shenzhen TCL Browser TV Web BrowseHere (aka com.tcl.browser) 6.65.022_dab24cc6_231221_gp allows a remote attacker to execute arbitrary JavaScript code via the com.tcl.browser.portal.browse.activity.BrowsePageActivity component.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tcl Browser Tv Web - Browsehere | =6.65.022_dab24cc6_231221_gp |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-43481 has been assessed with high severity due to the potential for remote code execution.
To mitigate CVE-2023-43481, users should update to the latest version of Shenzhen TCL Browser TV Web BrowseHere.
CVE-2023-43481 affects users of Shenzhen TCL Browser TV Web BrowseHere version 6.65.022_dab24cc6_231221_gp.
CVE-2023-43481 is a remote code execution vulnerability that allows execution of arbitrary JavaScript code.
Yes, CVE-2023-43481 can be exploited remotely, allowing attackers to execute JavaScript on the targeted device.